Public read-only CLI

Audit, Registry and OKF through a predictable interface for agents and scripts.

The official CLI observes public resources and returns versioned JSON. It uses no credentials, writes no files, changes no websites and does not replace MCP.

Open CLI documentation
01

Audit a public website

The audit command uses the web scanner DNS, SSRF, timeout and response-size controls. Dry-run explains the planned requests without sending them.

02

Read the Registry

Registry get retrieves only published profiles and validates their contract. Drafts, dossiers and private observations remain out of scope.

03

Verify OKF

OKF verify checks the manifest, routes, media types and SHA-256 values in memory. Each execution produces a stable response and predictable exit code.

Visible boundaries